Thursday, March 22, 2012

Configure Idle and Disconnect Timeout Settings in XenApp 6.x

Configure Idle and Disconnect Timeout Settings in XenApp 6.x and XenApp Fundamentals


Configuring idle and disconnect timeout settings in XenApp 6.x and XenApp Fundamentals is crucial for optimizing resource management and enhancing security. These settings determine how long a user session can remain idle before it is automatically disconnected, thereby freeing up system resources for other users. To configure these settings, administrators can access the Citrix App Center, navigate to the desired application server, and specify the appropriate timeout values under the session management settings. By fine-tuning these parameters, organizations can ensure a balance between user convenience and system efficiency. In addition to a better user experience, implementing strict timeout policies can help mitigate potential security risks by reducing the window of opportunity for unauthorized access to idle sessions.

XenApp 6.5 for Windows Server 2008 R2


The session limits applied using the ICA listener configuration utility only affect connections to a XenApp server. The session limits settings in a user policy only apply to XenDesktop.
  •  Click the Start menu, select All Programs, Citrix, Administration Tools, and then click on ICA Listener Configuration.
  • Select the ICA-TCP listener and click the Edit option.  
  • On the Session Limits tab, configure the disconnected sessions timeout in the drop-down menu in the End Disconnected Session section.
      






    Click Okay and Close.

    These options control how long a user session can stay inactive before disconnecting automatically and releasing system resources for other users. Administrators can set them up by logging into the Citrix App Center, selecting the correct application server, and going to the session management settings. From there, they can adjust the timeout numbers accordingly. Organizations can guarantee a balance between system efficiency and user convenience by adjusting these characteristics. Strict timeout rules can also lessen the window of opportunity for illegal access to idle sessions, which helps reduce possible security threats.  Setting up idle and disconnect timeouts in XenApp 6.x and XenApp Fundamentals is essential to improving security and resource management.





Monday, November 07, 2011

Disable Session Reliability in XenApp 6

Disable Session Reliability in XenApp 6

Disable Session Reliability in XenApp 6. One of the requirements of published apps in Citrix is to limit the user to a single instance of a published application. In Xenapp 6, the checkbox in the published application properties that states limit the user to one session does not seem to do the trick by itself and often brings about errors. Users receive errors like "the server has reached the maximum number of connections" and others of similar effect.

So what everyone does is uncheck the box and find what is different about Xenapp 6 or even worse think there is a larger problem with their Xenapp 6 installation. The solution is simple enough. Limiting session for a user to one per app can be accomplished using a policy. Create a new computer policy for the farm and disable session reliability. Once session reliability is turned off, check the box in application properties to permit only one instance of the published app .

Thursday, December 16, 2010

The time provider NtpClient is configured to acquire time

If your geting the following error in your system log do the following.
On your root level PDC emulator domain controller run the command at a command prompt:
net time /setsntp:ntp2.usno.navy.mil /set /y
Then restart the time service.
On all child domain controllers that are the PDC emulator for the domain run the following command:
net time \\ROOT-DC-name /set
Change ROOT-DC-name to your root level domain controller name running the PDC emulator.
Then restart the time service.
Check your system log. You will see confirmations that the local time service is now syncing with the time source.

Wednesday, October 06, 2010

BlackBerry Torch Doesn't Reconcile Inbox - Syncing


BlackBerry Torch Syncing Problem with BES 4.1, Exchange 2007.
This was a new BlackBerry Torch 9800 series phone. The user had problems with reconciliation from the begining although it was not noticed right away.

His outlook inbox surely did not match the phones renerding of the inbox. Messages that had been removed in Outlook were still showing on the the BlackBerry Torch 9800 phone. Not part of the problem, but this user had ATT service. The BES (BlackBerry Enterprise Server) was version 4.1. There were about another 70 users on the BES server but none of them had this issue. What was done to resolve was firstly to change the number of messages tracked on the BES server and enabled HARD delete tracking.
Those options can be found by logging into the BES 4.1 server:
- Open BlackBerry Manager.
- In the explorer view, click server.
- On the server configuration tab, click edit Properties, then click Messaging.
- For the hard deletes reconciliation option, select True from the drop-down menu
- Restart the BlackBerry enterprise Server services ( I recommend restarting the services from the services control panel applet, not from the BES manager).
To change the number of messages tracked (the default messages tracked is 100)
In the performance section change the value of the Message State database Size to 1000. 1000 is the max.
I also resent the service book for the user, resent the IT policy, resent the peer to peer key.